sudo iptables --list
Chain INPUT (policy ACCEPT)
target prot opt source destination
DROP all -- 87-253-132-202.colo.transip.net anywhere
DROP all -- 87-253-132-203.colo.transip.net anywhere
ACCEPT tcp -- 87-253-132-202.colo.transip.net/31 anywhere tcp dpt:httpflags: FIN,SYN,RST,ACK/SYN #conn src/24 <= 2
Chain FORWARD (policy ACCEPT)
target prot opt source destination
Chain OUTPUT (policy ACCEPT)
target prot opt source destination
&&&&
sudo iptables -S
-P INPUT ACCEPT
-P FORWARD ACCEPT
-P OUTPUT ACCEPT
-A INPUT -s 87.253.132.202/32 -j DROP
-A INPUT -s 87.253.132.203/32 -j DROP
-A INPUT -s 87.253.132.202/31 -p tcp -m tcp --dport 80 --tcp-flags FIN,SYN,RST,ACK SYN -m connlimit --connlimit-upto 2 --connlimit-mask 24 --connlimit-saddr -j ACCEPT